Latest CVE Feed
-
5.0
MEDIUMCVE-2001-0784
Directory traversal vulnerability in Icecast 1.3.10 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack using encoded URL characters.... Read more
Affected Products : icecast- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
6.2
MEDIUMCVE-2001-0905
Race condition in signal handling of procmail 3.20 and earlier, when running setuid, allows local users to cause a denial of service or gain root privileges by sending a signal while a signal handling routine is already running.... Read more
- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0758
Directory traversal vulnerability in Shambala 4.5 allows remote attackers to escape the FTP root directory via "CWD ..." command.... Read more
Affected Products : shambala_server- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0767
Directory traversal vulnerability in GuildFTPd 0.9.7 allows attackers to list or read arbitrary files and directories via a .. in (1) LS or (2) GET.... Read more
Affected Products : guildftpd- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0741
Cisco Hot Standby Routing Protocol (HSRP) allows local attackers to cause a denial of service by spoofing HSRP packets.... Read more
Affected Products : hsrp- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0756
CatalogMgr.pl in VirtualCatalog (incorrectly claimed to be in VirtualCart) allows remote attackers to execute arbitrary code via the template parameter.... Read more
Affected Products : virtualcatalog- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0794
Buffer overflow in A-FTP Anonymous FTP Server allows remote attackers to cause a denial of service via a long USER command.... Read more
Affected Products : anonymous_ftp_server- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0751
Cisco switches and routers running CBOS 2.3.8 and earlier use predictable TCP Initial Sequence Numbers (ISN), which allows remote attackers to spoof or hijack TCP connections.... Read more
Affected Products : cbos- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0746
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a long URI with (1) GETPROPERTIES, (2) GETATTRIBUTENAMES, ... Read more
- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0907
Linux kernel 2.2.1 through 2.2.19, and 2.4.1 through 2.4.10, allows local users to cause a denial of service via a series of deeply nested symlinks, which causes the kernel to spend extra time when trying to access the link.... Read more
Affected Products : linux_kernel- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0734
Hitachi Super-H architecture in NetBSD 1.5 and 1.4.1 allows a local user to gain privileges via modified Status Register contents, which are not properly handled by (1) the sigreturn system call or (2) the process_write_regs kernel routine.... Read more
Affected Products : netbsd- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0771
Spytech SpyAnywhere 1.50 allows remote attackers to gain administrator access via a single character in the "loginpass" field.... Read more
Affected Products : spyanywhere- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0788
Internet Software Solutions Air Messenger LAN Server (AMLServer) 3.4.2 allows remote attackers to obtain an absolute path for the server directory by viewing the Location header.... Read more
Affected Products : air_messenger_lan_server- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0778
OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20).... Read more
Affected Products : omnihttpd- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0776
Buffer overflow in DynFX MailServer version 2.10 allows remote attackers to conduct a denial of service via a long username to the POP3 service.... Read more
Affected Products : dynfx_mailserver- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0753
Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain the passwords and gain privileges.... Read more
Affected Products : cbos- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0792
Format string vulnerability in XChat 1.2.x allows remote attackers to execute arbitrary code via a malformed nickname.... Read more
Affected Products : xchat- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0772
Buffer overflows and other vulnerabilities in multiple Common Desktop Environment (CDE) modules in HP-UX 10.10 through 11.11 allow attackers to cause a denial of service and possibly gain additional privileges.... Read more
Affected Products : hp-ux- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0739
Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.... Read more
Affected Products : secure_linux- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0790
Specter IDS version 4.5 and 5.0 allows a remote attacker to cause a denial of service (CPU exhaustion) via a port scan, which causes the server to consume CPU while preparing alerts.... Read more
Affected Products : specter_ids- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025